Skip to content

fix(security): patch 3 packages against 11 vulnerabilities (2 via override) - #90

Closed
repowarden-app[bot] wants to merge 1 commit into
masterfrom
repowarden/security-patch-1784653660497
Closed

fix(security): patch 3 packages against 11 vulnerabilities (2 via override)#90
repowarden-app[bot] wants to merge 1 commit into
masterfrom
repowarden/security-patch-1784653660497

Conversation

@repowarden-app

Copy link
Copy Markdown

What this PR does

Direct dependency bumps (1)

Transitive overrides (2)

These are deps of your deps. RepoWarden added a overrides block to the root package.json so npm forces the patched version when it resolves the lockfile.

Remediation pending (2)

These vulns don't yet have a published fixed version, so RepoWarden can't auto-patch them. They'll be picked up automatically once a fix lands upstream.

Testing checklist

  • CI passes
  • No regressions in dependent code (override-based fixes can shift transitive behaviour)
  • Lockfile diff looks reasonable

🤖 Generated by RepoWarden

@repowarden-app

repowarden-app Bot commented Aug 5, 2026

Copy link
Copy Markdown
Author

This PR has had no activity for 14 days, so I'm closing it.

If there was an issue with these changes, please reply with feedback so I can improve!

— RepoWarden

@repowarden-app repowarden-app Bot closed this Aug 5, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants